CONTACT US
forrester wave report 2023

Close your ransomware case with Open NDR

SEE HOW

Download our free guide to find hidden attackers.

Find hidden attackers with Open NDR

SEE HOW

cloud-network

Corelight announces cloud enrichment for AWS, GCP, and Azure

READ MORE

corelight partner programe guide

Corelight's partner program

VIEW PROGRAM

glossary-icon

10 Considerations for Implementing an XDR Strategy

READ NOW

ad-images-nav_0006_Blog

Don't trust. Verify with evidence

READ BLOG

video

The Power of Open-Source Tools for Network Detection and Response

WATCH THE WEBCAST

ad-nav-ESG

The Evolving Role of NDR

DOWNLOAD THE REPORT

ad-images-nav_0006_Blog

Detecting 5 Current APTs without heavy lifting

READ BLOG

g2-medal-best-support-spring-2024

Network Detection and Response

SUPPORT OVERVIEW

 

INVESTIGATOR

The only evidence-first threat investigation platform.

WATCH DEMO

investigator-screens-hero

 

INVESTIGATOR

The only evidence-first threat investigation platform.

WATCH DEMO

investigator-screens-hero

 

TRUST AND COMPLIANCE

Making security and trust a cornerstone of your success in a one-stop resource.

In an era defined by complex cyber threats and an ever-changing regulatory landscape, Corelight champions compliance as an enabler of innovation, a shield against uncertainty, and a bridge to lasting trust. Easily stay informed with all our policies, attestations, and agreements in one place.

Corelight attestations and certifications

 

soc2-align

 

SOC2

Corelight is SOC2 Type II Assessed through A-Lign as our Auditor:

  • In December 2021 we obtained our Type II attestation that demonstrated operational effectiveness of our design controls over the past year.
  • Since 2021 we have been audited annually, and our most current SOC2/Type II report was completed on May 31, 2024.

 

gdpr-audited

 

GDPR

Corelight is also committed to data privacy and is compliant under EU General Data Protection Regulation (GDPR) through Kirkpatrick Price as our Auditor:

  • Corelight successfully underwent our original GDPR attestation in October 2022, since then we have been audited annually, and our most current re-attestation was complete November 2024.
  • In addition, Corelight uses Standard Contractual Clauses as a method for companies to transfer personal data to the United States from the European Union (EU) in a way that is consistent with EU law and acceptable under EU GDPR.
  • Corelight Privacy Statement (found on our company’s public website) describes our privacy practices, specifically how we collect, use, share, and otherwise process information relating to individuals

(“Personal Data”) for our US customers, international, and our employees.

Our pledge to you

As the CISO at Corelight, I bring a unique perspective to our security and compliance programs. Before joining the leadership team, I was a customer who leveraged Corelight’s solutions across multiple critical mission contexts at some of the largest technology companies on the planet. This dual experience —as both client and guardian— shapes my approach to our security posture and compliance framework. I have made it my mission to continuously strengthen the protections that I expected as a client.

Having been in your shoes, I fully understand the weight of responsibility you carry. The trust you place in us to help you execute your security mission is something I take personally. That’s why we make our compliance documentation, audit reports, and security certifications available to you. I invite you to review these materials and reach out to me or our compliance team if there are any questions.

Security is not just what we do, its who we are.

Bernard Brantley
Chief Information Security Officer

brand portal icon Visit our Compliance and Trust Center by TrustShare for real-time access to vital information. Or contact us.